mirror of
https://github.com/status-im/status-go.git
synced 2025-01-10 14:47:06 +00:00
e8c4b7647f
* chore(upgradeSQLCipher): Upgrading SQLCipher to version 5.4.5 Changes: ### github.com/mutecomm/go-sqlcipher 1. The improved crypto argorighms from go-sqlcipher v3 are merged in v4 Tags: v4.4.2-status.1 - merge `burn_stack` improvement v4.4.2-status.2 - merge `SHA1` improvement v4.4.2-status.4- merge 'AES' improvement 2. Fixed `go-sqlcipher` to support v3 database in compatibility mode (`sqlcipher` already supports this) (Tag: v4.4.2-status.3) 3. Upgrade `sqlcipher` to v5.4.5 (Tag: v4.5.4-status.1) ### github.com/status-im/migrate/v4 1. Upgrade `go-sqlcipher` version in `github.com/status-im/migrate/v4` ### status-go 1. Upgrade `go-sqlcipher` and `migrate` modules in status-go 2. Configure the DB connections to open the DB in v3 compatibility mode * chore(upgradeSQLCipher): Use sqlcipher v3 configuration to encrypt a plain text database * chore(upgradeSQLCipher): Scanning NULL BLOB value should return nil Fixing failing tests: TestSyncDeviceSuite/TestPairingSyncDeviceClientAsReceiver; TestSyncDeviceSuite/TestPairingSyncDeviceClientAsSender Considering the following configuration: 1. Table with BLOB column has 1 NULL value 2. Query the value 3. Rows.Scan(&dest sql.NullString) Expected: dest.Valid == false; dest.String == nil Actual: dest.Valid == true; dest.String == "" * chore: Bump go-sqlcipher version to include NULL BLOB fix
85 lines
2.2 KiB
C
85 lines
2.2 KiB
C
/* LibTomCrypt, modular cryptographic library -- Tom St Denis */
|
|
/* SPDX-License-Identifier: Unlicense */
|
|
#include "tomcrypt_private.h"
|
|
|
|
/**
|
|
@file cbc_decrypt.c
|
|
CBC implementation, encrypt block, Tom St Denis
|
|
*/
|
|
|
|
|
|
#ifdef LTC_CBC_MODE
|
|
|
|
/**
|
|
CBC decrypt
|
|
@param ct Ciphertext
|
|
@param pt [out] Plaintext
|
|
@param len The number of bytes to process (must be multiple of block length)
|
|
@param cbc CBC state
|
|
@return CRYPT_OK if successful
|
|
*/
|
|
int cbc_decrypt(const unsigned char *ct, unsigned char *pt, unsigned long len, symmetric_CBC *cbc)
|
|
{
|
|
int x, err;
|
|
unsigned char tmp[16];
|
|
#ifdef LTC_FAST
|
|
LTC_FAST_TYPE tmpy;
|
|
#else
|
|
unsigned char tmpy;
|
|
#endif
|
|
|
|
LTC_ARGCHK(pt != NULL);
|
|
LTC_ARGCHK(ct != NULL);
|
|
LTC_ARGCHK(cbc != NULL);
|
|
|
|
if ((err = cipher_is_valid(cbc->cipher)) != CRYPT_OK) {
|
|
return err;
|
|
}
|
|
|
|
/* is blocklen valid? */
|
|
if (cbc->blocklen < 1 || cbc->blocklen > (int)sizeof(cbc->IV) || cbc->blocklen > (int)sizeof(tmp)) {
|
|
return CRYPT_INVALID_ARG;
|
|
}
|
|
|
|
if (len % cbc->blocklen) {
|
|
return CRYPT_INVALID_ARG;
|
|
}
|
|
#ifdef LTC_FAST
|
|
if (cbc->blocklen % sizeof(LTC_FAST_TYPE)) {
|
|
return CRYPT_INVALID_ARG;
|
|
}
|
|
#endif
|
|
|
|
if (cipher_descriptor[cbc->cipher].accel_cbc_decrypt != NULL) {
|
|
return cipher_descriptor[cbc->cipher].accel_cbc_decrypt(ct, pt, len / cbc->blocklen, cbc->IV, &cbc->key);
|
|
}
|
|
while (len) {
|
|
/* decrypt */
|
|
if ((err = cipher_descriptor[cbc->cipher].ecb_decrypt(ct, tmp, &cbc->key)) != CRYPT_OK) {
|
|
return err;
|
|
}
|
|
|
|
/* xor IV against plaintext */
|
|
#if defined(LTC_FAST)
|
|
for (x = 0; x < cbc->blocklen; x += sizeof(LTC_FAST_TYPE)) {
|
|
tmpy = *(LTC_FAST_TYPE_PTR_CAST((unsigned char *)cbc->IV + x)) ^ *(LTC_FAST_TYPE_PTR_CAST((unsigned char *)tmp + x));
|
|
*(LTC_FAST_TYPE_PTR_CAST((unsigned char *)cbc->IV + x)) = *(LTC_FAST_TYPE_PTR_CAST((unsigned char *)ct + x));
|
|
*(LTC_FAST_TYPE_PTR_CAST((unsigned char *)pt + x)) = tmpy;
|
|
}
|
|
#else
|
|
for (x = 0; x < cbc->blocklen; x++) {
|
|
tmpy = tmp[x] ^ cbc->IV[x];
|
|
cbc->IV[x] = ct[x];
|
|
pt[x] = tmpy;
|
|
}
|
|
#endif
|
|
|
|
ct += cbc->blocklen;
|
|
pt += cbc->blocklen;
|
|
len -= cbc->blocklen;
|
|
}
|
|
return CRYPT_OK;
|
|
}
|
|
|
|
#endif
|